Firewall Configuration; Create A Custom Firewall Zone - Digi Connect EZ Mini User Manual

Hide thumbs Also See for Connect EZ Mini:
Table of Contents

Advertisement

Firewall

Firewall configuration

Firewall configuration includes the following configuration options:
Zones: A zone is a firewall access group to which network interfaces can be added. You then
n
use zones to configure packet filtering and access control lists for interfaces that are included
in the zone. Preconfigured zones include:
Any: Matches any network interface, even if they are not assigned to this zone.
l
Loopback: Zone for interfaces that are used for communication between processes
l
running on the device.
Internal: Used for interfaces connected to trusted networks. By default, the firewall will
l
allow most access from this zone.
External: Used for interfaces to connect to untrusted zones, such as the internet. This
l
zone has Network Address Translation (NAT) enabled by default. By default, the firewall will
block most access from this zone.
Edge: Used for interfaces connected to trusted networks, where the device is a client on
l
the edge of the network rather than a router or gateway.
Setup: Used for interfaces involved in the initial setup of the device. By default, the firewall
l
will only allow this zone to access administration services.
IPsec: The default zone for IPsec tunnels.
l
Dynamic routes: Used for routes learned using routing services.
l
Port forwarding: A list of rules that allow network connections to the Connect EZ to be
n
forwarded to other servers by translating the destination address.
Packet filtering: A list of packet filtering rules that determine whether to accept or reject
n
network connections that are forwarded through the Connect EZ.
Custom rules: A script that is run to install advanced firewall rules beyond the
n
scope/capabilities of the standard device configuration.
Quality Of Service: Quality of Service (QOS) options for bandwidth allocation and policy-based
n
traffic shaping and prioritizing.

Create a custom firewall zone

In addition to the preconfigured zones, you can create your custom zones that can be used to
configure packet filtering and access control lists for network interfaces.
To create a zone:
  Web
1. Log into Digi Remote Manager, or log into the local Web UI as a user with full Admin access
rights.
2. Access the device configuration:
Remote Manager:
a. Locate your device as described in
device.
b. Click the Device ID.
Digi Connect EZ Mini User Guide
Use Digi Remote Manager to view and manage your
Firewall configuration
565

Advertisement

Table of Contents
loading

Table of Contents